Insufficient validation of untrusted input in DevTools in Google Chrome on Chrome OS prior to 105.0.5195.125 allowed an attacker who convinced a user to install a malicious extension to bypass navigation restrictions via a crafted HTML page. (Chromium security severity: High)
2022-09-26T16:15:13.827
2024-11-21T07:19:02.150
Modified
CVSSv3.1: 5.4 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | chrome | < 105.0.5195.125 | Yes | |
Operating System | chrome_os | - | No | |
Operating System | fedoraproject | fedora | 37 | Yes |
Operating System | debian | debian_linux | 11.0 | Yes |